HJT-logi?Kone hidastelee.

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by Mestaus, Mar 27, 2007.

  1. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 7:39:45, on 28.3.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    F:\WINDOWS\System32\smss.exe
    F:\WINDOWS\SYSTEM32\winlogon.exe
    F:\WINDOWS\system32\services.exe
    F:\WINDOWS\system32\lsass.exe
    F:\WINDOWS\system32\svchost.exe
    F:\WINDOWS\System32\svchost.exe
    F:\WINDOWS\Explorer.EXE
    F:\WINDOWS\system32\spoolsv.exe
    F:\WINDOWS\system32\RunDLL32.exe
    F:\WINDOWS\SOUNDMAN.EXE
    F:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    F:\Program Files\Logitech\SetPoint\SetPoint.exe
    F:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    F:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
    F:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    F:\WINDOWS\system32\nvsvc32.exe
    F:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    F:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    F:\WINDOWS\system32\wscntfy.exe
    F:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    F:\Program Files\MSN Messenger\msnmsgr.exe
    F:\Documents and Settings\-.-.000\Työpöytä\Kama\LDC\LDCPlusPlus.exe
    C:\Roina#6\P2P-Ohjelmat\Torrentit\utorrent-1.6.1-beta-build-483.exe
    F:\PROGRA~1\Mozilla Firefox\firefox.exe
    F:\Documents and Settings\-.-.000\Työpöytä\HiJackThis_v2.0.0.0.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [SmcService] F:\PROGRA~1\Sygate\SPF\smc.exe -startgui
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [avast!] F:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "F:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'Paikallinen palve')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'Verkkopalve')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Logitech SetPoint.lnk = ?
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - F:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - F:\WINDOWS\system32\browseui.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - F:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - F:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - F:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - F:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - F:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: Loogisen levyn hallinnan valvontapalvelu (dmadmin) - Unknown owner - F:\WINDOWS\System32\dmadmin.exe
    O23 - Service: Tapahtumaloki (Eventlog) - Unknown owner - F:\WINDOWS\system32\services.exe
    O23 - Service: CD-levyjen kirjoittamisen IMAPI COM -palvelu (ImapiService) - Unknown owner - F:\WINDOWS\system32\imapi.exe
    O23 - Service: NBService - Nero AG - F:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - F:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: PDAgent - Raxco Software, Inc. - F:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    O23 - Service: PDEngine - Raxco Software, Inc. - F:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    O23 - Service: Plug and Play (PlugPlay) - Unknown owner - F:\WINDOWS\system32\services.exe
    O23 - Service: Älykortti (SCardSvr) - Unknown owner - F:\WINDOWS\System32\SCardSvr.exe
    O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - F:\Program Files\Sygate\SPF\smc.exe
    O23 - Service: Resurssilokit ja -hälytykset (SysmonLog) - Unknown owner - F:\WINDOWS\system32\smlogsvc.exe
    O23 - Service: Aseman tilannevedos (VSS) - Unknown owner - F:\WINDOWS\System32\vssvc.exe
    O23 - Service: WMI resurssisovitin (WmiApSrv) - Unknown owner - F:\WINDOWS\system32\wbem\wmiapsrv.exe

    --
    End of file - 4942 bytes
     
  2. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Lataa Deckard's System Scanner Työpöydällesi.

    Huomioi: Sinulla tulee olla Järjestelmänvalvojan oikeudet ajaaksesi ohjelman.

    [*]Sulje kaikki avoimet ikkunat ja ohjelmat.
    [*]Tupla Klikkaa Dss.exe tiedostoa ajaaksesi ohjelman, seuraa ohjeita.
    [*]Kun Scannaus on valmis 2 textitiedostoa pitäisi avautua, Main.txt ja extra.txt
    [*]Näppäile Kopioi ( CTRL+A -> CTRL + C ) ja liitä ( CTRL + V )
    [*]kopioi ja liitä main.txt ja extra.txt sisältö seuraavaan vastaukseesi.
     
  3. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    Deckard's System Scanner v20070318.32
    Run by - on 2007-03-28 at 12:46:11
    Computer is in Normal Mode.
    --------------------------------------------------------------------------------

    -- System Restore --------------------------------------------------------------

    Successfully created a Deckard's System Scanner Restore Point.


    -- Last 5 Restore Point(s) --
    26: 2007-03-28 09:46:14 UTC - RP26 - Deckard's System Scanner Restore Point
    25: 2007-03-27 12:42:26 UTC - RP25 - 27.3.2007 15:42
    24: 2007-03-27 11:57:57 UTC - RP24 - Removed Microsoft Windows Journal Viewer
    23: 2007-03-27 10:52:18 UTC - RP23 - Software Distribution Service 2.0
    22: 2007-03-27 10:42:05 UTC - RP22 - Software Distribution Service 2.0


    -- First Restore Point --
    1: 2007-03-23 16:19:49 UTC - RP1 - Järjestelmän tarkistuspiste


    Backed up registry hives.

    Performed disk cleanup.


    -- HijackThis (run as -.exe) ------------------------------------------

    Logfile of HijackThis v1.99.1
    Scan saved at 12:47:24, on 28.3.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    F:\WINDOWS\System32\smss.exe
    F:\WINDOWS\SYSTEM32\winlogon.exe
    F:\WINDOWS\system32\services.exe
    F:\WINDOWS\system32\lsass.exe
    F:\WINDOWS\system32\svchost.exe
    F:\WINDOWS\System32\svchost.exe
    F:\WINDOWS\Explorer.EXE
    F:\WINDOWS\system32\spoolsv.exe
    F:\WINDOWS\SOUNDMAN.EXE
    F:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    F:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    F:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    F:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    F:\Program Files\Alwil Software\Avast4\ashServ.exe
    F:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    F:\WINDOWS\system32\nvsvc32.exe
    F:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    F:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    F:\WINDOWS\system32\wscntfy.exe
    F:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    F:\Documents and Settings\-.-.000\Työpöytä\dss.exe
    F:\PROGRA~1\HIJACK~1\-.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [SmcService] F:\PROGRA~1\Sygate\SPF\smc.exe -startgui
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [avast!] F:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "F:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - Global Startup: Logitech SetPoint.lnk = ?
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "F:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - F:\WINDOWS\
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - F:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - F:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - F:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - F:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - F:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: NBService - Nero AG - F:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - F:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: PDAgent - Raxco Software, Inc. - F:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    O23 - Service: PDEngine - Raxco Software, Inc. - F:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - F:\Program Files\Sygate\SPF\smc.exe


    -- File Associations -----------------------------------------------------------

    .url - InternetShortcut - shell\open\command - rundll32.exe shdocvw.dll,OpenURL %l


    -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

    R0 DefragFS - f:\windows\system32\drivers\defragfs.sys
    R0 Teefer (Teefer for NT) - f:\windows\system32\drivers\teefer.sys
    R0 viamraid - f:\windows\system32\drivers\viamraid.sys
    R1 wpsdrvnt - f:\windows\system32\drivers\wpsdrvnt.sys
    R2 wg3n (SyGate for NT, wg3n) - f:\windows\system32\drivers\wg3n.sys
    R2 wg4n (SyGate for NT, wg4n) - f:\windows\system32\drivers\wg4n.sys
    R2 wg5n (SyGate for NT, wg5n) - f:\windows\system32\drivers\wg5n.sys
    R2 wg6n (SyGate for NT, wg6n) - f:\windows\system32\drivers\wg6n.sys
    R3 LHidFilt (Logitech SetPoint KMDF HID Filter Driver) - f:\windows\system32\drivers\lhidfilt.sys
    R3 LMouFilt (Logitech SetPoint KMDF Mouse Filter Driver) - f:\windows\system32\drivers\lmoufilt.sys
    R3 LUsbFilt (Logitech SetPoint KMDF USB Filter) - f:\windows\system32\drivers\lusbfilt.sys
    R3 PCnetHL (AMD PCnet-Home Adapter Driver) - f:\windows\system32\drivers\pcntn5hl.sys

    S3 PavSRK.sys - f:\windows\system32\pavsrk.sys (file missing)
    S3 PavTPK.sys - f:\windows\system32\pavtpk.sys (file missing)


    -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

    R3 NMIndexingService - "f:\program files\common files\ahead\lib\nmindexingservice.exe"

    S3 NBService - f:\program files\nero\nero 7\nero backitup\nbservice.exe


    -- Files created between 2007-02-28 and 2007-03-28 -----------------------------

    2007-03-28 02:09:11 23352 --a------ F:\WINDOWS\system32\drivers\aswRdr.sys
    2007-03-28 02:09:10 43176 --a------ F:\WINDOWS\system32\drivers\aswTdi.sys
    2007-03-28 02:09:10 31560 --a------ F:\WINDOWS\system32\drivers\aavmker4.sys
    2007-03-28 02:09:07 94424 --a------ F:\WINDOWS\system32\drivers\aswmon2.sys
    2007-03-28 02:09:07 85952 --a------ F:\WINDOWS\system32\drivers\aswmon.sys
    2007-03-28 02:09:02 348160 --a------ F:\WINDOWS\system32\MSVCR71.dll
    2007-03-28 02:09:02 499712 --a------ F:\WINDOWS\system32\MSVCP71.dll
    2007-03-28 02:09:02 1060864 --a------ F:\WINDOWS\system32\MFC71.dll
    2007-03-28 02:09:02 90112 --a------ F:\WINDOWS\system32\AVASTSS.scr
    2007-03-28 02:09:02 689280 --a------ F:\WINDOWS\system32\aswBoot.exe
    2007-03-28 02:08:58 0 d-------- F:\Program Files\Alwil Software<ALWILS~1>
    2007-03-27 15:32:33 25992 --a------ F:\WINDOWS\system32\pgdfgsvc.exe
    2007-03-27 15:13:21 0 d-------- F:\Program Files\Advanced Spyware Remover<ADVANC~1>
    2007-03-27 15:09:48 118784 --a------ F:\WINDOWS\system32\MSSTDFMT.DLL
    2007-03-27 15:09:47 0 d-------- F:\Program Files\SpywareBlaster<SPYWAR~1>
    2007-03-26 17:50:37 0 d-------- F:\Program Files\CCleaner
    2007-03-25 20:06:46 3968 --a------ F:\WINDOWS\system32\drivers\AvgAsCln.sys
    2007-03-25 16:34:36 0 d-------- F:\Documents and Settings\-.-.000\Application Data\Lavasoft
    2007-03-25 16:34:28 0 d-------- F:\Program Files\Lavasoft
    2007-03-25 04:17:57 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy<SPYBOT~1>
    2007-03-24 16:42:09 0 d-------- F:\Documents and Settings\-.-.000\Application Data\Logitech
    2007-03-24 16:39:44 23856 --a------ F:\WINDOWS\system32\spupdsvc.exe
    2007-03-24 16:39:24 33296 --a------ F:\WINDOWS\system32\drivers\LMouFilt.Sys
    2007-03-24 16:39:24 101136 --a------ F:\WINDOWS\KHALMNPR.Exe
    2007-03-24 16:39:23 28176 --a------ F:\WINDOWS\system32\drivers\LUsbFilt.sys
    2007-03-24 16:39:22 1419024 --a------ F:\WINDOWS\system32\WdfCoInstaller01005.dll<WDFCOI~1.DLL>
    2007-03-24 16:39:22 34576 --a------ F:\WINDOWS\system32\drivers\LHidFilt.Sys
    2007-03-24 16:39:17 69632 --a------ F:\WINDOWS\system32\KemXML.dll
    2007-03-24 16:39:17 110592 --a------ F:\WINDOWS\system32\KemWnd.dll
    2007-03-24 16:39:17 135168 --a------ F:\WINDOWS\system32\KemUtil.dll
    2007-03-24 16:39:17 163840 --a------ F:\WINDOWS\system32\kemutb.dll
    2007-03-24 16:39:07 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Application Data\Logitech
    2007-03-24 16:39:02 0 d-------- F:\Program Files\Logitech
    2007-03-24 15:26:25 49152 --a------ F:\WINDOWS\system32\ChCfg.exe
    2007-03-24 15:26:19 4027456 -ra------ F:\WINDOWS\system32\drivers\alcxwdm.sys
    2007-03-24 15:26:11 10528768 --a------ F:\WINDOWS\system32\RTLCPL.exe
    2007-03-24 15:26:11 0 d-------- F:\Program Files\Realtek AC97<REALTE~1>
    2007-03-24 15:26:09 147456 --a------ F:\WINDOWS\system32\RtlCPAPI.dll
    2007-03-24 15:26:09 577536 --a------ F:\WINDOWS\soundman.exe
    2007-03-24 15:26:08 315392 --a------ F:\WINDOWS\alcupd.exe
    2007-03-24 15:26:08 217088 --a------ F:\WINDOWS\Alcrmv.exe
    2007-03-24 15:25:57 0 dr------- F:\Documents and Settings\NetworkService.NT-HALLINTA.001\Suosikit
    2007-03-24 14:44:27 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Application Data\PC Drivers Headquarters<PCDRIV~1>
    2007-03-24 14:37:19 255848 --a------ F:\WINDOWS\system32\xactengine2_6.dll<XA3066~1.DLL>
    2007-03-24 14:37:19 251672 --a------ F:\WINDOWS\system32\xactengine2_5.dll<XA3C56~1.DLL>
    2007-03-24 14:37:18 68888 --a------ F:\WINDOWS\system32\xinput1_3.dll<XINPUT~4.DLL>
    2007-03-24 14:37:18 237848 --a------ F:\WINDOWS\system32\xactengine2_4.dll<XA3856~1.DLL>
    2007-03-24 14:37:18 15128 --a------ F:\WINDOWS\system32\x3daudio1_1.dll<X3DAUD~2.DLL>
    2007-03-24 14:37:18 3426072 --a------ F:\WINDOWS\system32\d3dx9_32.dll
    2007-03-24 14:37:18 2414360 --a------ F:\WINDOWS\system32\d3dx9_31.dll
    2007-03-24 14:37:17 62744 --a------ F:\WINDOWS\system32\xinput1_2.dll<XINPUT~3.DLL>
    2007-03-24 14:37:17 236824 --a------ F:\WINDOWS\system32\xactengine2_3.dll<XACTEN~4.DLL>
    2007-03-24 14:37:09 2297552 --a------ F:\WINDOWS\system32\d3dx9_26.dll
    2007-03-24 04:24:06 14568 --a------ F:\WINDOWS\system32\drivers\wg6n.sys
    2007-03-24 04:24:05 14568 --a------ F:\WINDOWS\system32\drivers\wg5n.sys
    2007-03-24 04:24:05 14568 --a------ F:\WINDOWS\system32\drivers\wg4n.sys
    2007-03-24 04:24:04 21075 --a------ F:\WINDOWS\system32\drivers\wpsdrvnt.sys
    2007-03-24 04:24:04 14568 --a------ F:\WINDOWS\system32\drivers\wg3n.sys
    2007-03-24 04:24:04 60496 --a------ F:\WINDOWS\system32\drivers\Teefer.sys
    2007-03-24 04:24:02 83096 --a------ F:\WINDOWS\system32\SSSensor.dll
    2007-03-24 04:23:58 0 d-------- F:\Program Files\Sygate
    2007-03-23 22:02:29 0 d-------- F:\Program Files\Steam
    2007-03-23 21:31:06 9488 --a------ F:\WINDOWS\system32\sporder.dll
    2007-03-23 21:29:47 0 d-------- F:\Program Files\Common Files\Panda Software<PANDAS~1>
    2007-03-23 21:09:08 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Application Data\Raxco
    2007-03-23 21:08:32 0 d-------- F:\Program Files\Raxco
    2007-03-23 21:03:39 3072 --a------ F:\WINDOWS\system32\drivers\audstub.sys
    2007-03-23 21:03:29 21504 --a------ F:\WINDOWS\system32\hidserv.dll
    2007-03-23 21:03:01 57216 --a------ F:\WINDOWS\system32\drivers\redbook.sys
    2007-03-23 21:02:22 30282 --a------ F:\WINDOWS\system32\drivers\pcntn5hl.sys
    2007-03-23 21:02:05 74240 --a------ F:\WINDOWS\system32\usbui.dll
    2007-03-23 21:01:59 46464 --a------ F:\WINDOWS\system32\drivers\GAGP30KX.SYS
    2007-03-23 21:00:20 6144 -ra------ F:\WINDOWS\system32\kbdtuq.dll
    2007-03-23 21:00:20 6144 -ra------ F:\WINDOWS\system32\kbdtuf.dll
    2007-03-23 21:00:20 5632 -ra------ F:\WINDOWS\system32\kbdazel.dll
    2007-03-23 21:00:19 5632 -ra------ F:\WINDOWS\system32\kbdmon.dll
    2007-03-23 21:00:19 5632 -ra------ F:\WINDOWS\system32\kbdkyr.dll
    2007-03-23 21:00:17 8192 -ra------ F:\WINDOWS\system32\kbdhept.dll
    2007-03-23 21:00:17 6656 -ra------ F:\WINDOWS\system32\kbdhela3.dll
    2007-03-23 21:00:17 6144 -ra------ F:\WINDOWS\system32\kbdhela2.dll
    2007-03-23 21:00:17 5632 -ra------ F:\WINDOWS\system32\kbdhe319.dll
    2007-03-23 21:00:17 5632 -ra------ F:\WINDOWS\system32\kbdhe220.dll
    2007-03-23 21:00:17 5632 -ra------ F:\WINDOWS\system32\kbdhe.dll
    2007-03-23 21:00:17 6144 -ra------ F:\WINDOWS\system32\kbdgkl.dll
    2007-03-23 21:00:16 6144 -ra------ F:\WINDOWS\system32\kbdlv1.dll
    2007-03-23 21:00:16 6144 -ra------ F:\WINDOWS\system32\kbdlv.dll
    2007-03-23 21:00:16 5632 -ra------ F:\WINDOWS\system32\kbdlt1.dll
    2007-03-23 21:00:16 5632 -ra------ F:\WINDOWS\system32\kbdlt.dll
    2007-03-23 21:00:16 6144 -ra------ F:\WINDOWS\system32\kbdest.dll
    2007-03-23 21:00:15 6656 -ra------ F:\WINDOWS\system32\kbdsl1.dll
    2007-03-23 21:00:15 6656 -ra------ F:\WINDOWS\system32\kbdsl.dll
    2007-03-23 21:00:15 5632 -ra------ F:\WINDOWS\system32\kbdro.dll
    2007-03-23 21:00:15 5632 -ra------ F:\WINDOWS\system32\kbdpl1.dll
    2007-03-23 21:00:15 6656 -ra------ F:\WINDOWS\system32\kbdpl.dll
    2007-03-23 21:00:15 5632 -ra------ F:\WINDOWS\system32\kbdhu1.dll
    2007-03-23 21:00:14 6656 -ra------ F:\WINDOWS\system32\kbdycl.dll
    2007-03-23 21:00:14 6656 -ra------ F:\WINDOWS\system32\kbdhu.dll
    2007-03-23 21:00:14 6656 -ra------ F:\WINDOWS\system32\kbdcz2.dll
    2007-03-23 21:00:14 6656 -ra------ F:\WINDOWS\system32\kbdcz1.dll
    2007-03-23 21:00:14 7168 -ra------ F:\WINDOWS\system32\kbdcz.dll
    2007-03-23 21:00:14 6656 -ra------ F:\WINDOWS\system32\kbdcr.dll
    2007-03-23 21:00:14 6656 -ra------ F:\WINDOWS\system32\KBDAL.DLL
    2007-03-23 21:00:12 24661 --a------ F:\WINDOWS\system32\spxcoins.dll
    2007-03-23 21:00:12 13312 --a------ F:\WINDOWS\system32\irclass.dll
    2007-03-23 21:00:12 103424 --a------ F:\WINDOWS\system32\EqnClass.Dll
    2007-03-23 21:00:12 85020 --a------ F:\WINDOWS\system32\dgsetup.dll
    2007-03-23 21:00:12 176157 --a------ F:\WINDOWS\system32\dgrpsetu.dll
    2007-03-23 21:00:12 9008 --a------ F:\WINDOWS\system\VER.DLL
    2007-03-23 21:00:12 19200 --a------ F:\WINDOWS\system\TAPI.DLL
    2007-03-23 21:00:11 5120 --a------ F:\WINDOWS\system\SHELL.DLL
    2007-03-23 21:00:11 24064 --a------ F:\WINDOWS\system\OLESVR.DLL
    2007-03-23 21:00:11 82944 --a------ F:\WINDOWS\system\OLECLI.DLL
    2007-03-23 21:00:11 126912 --a------ F:\WINDOWS\system\MSVIDEO.DLL
    2007-03-23 21:00:11 9936 --a------ F:\WINDOWS\system\LZEXPAND.DLL
    2007-03-23 21:00:11 33120 --a------ F:\WINDOWS\system\COMMDLG.DLL
    2007-03-23 21:00:11 109504 --a------ F:\WINDOWS\system\AVIFILE.DLL
    2007-03-23 21:00:11 69856 --a------ F:\WINDOWS\system\AVICAP.DLL
    2007-03-23 21:00:10 15360 --a------ F:\WINDOWS\TASKMAN.EXE
    2007-03-23 21:00:10 11264 --a------ F:\WINDOWS\system32\drivers\irenum.sys
    2007-03-23 21:00:10 8704 --a------ F:\WINDOWS\system32\batt.dll
    2007-03-23 21:00:10 68768 --a------ F:\WINDOWS\system\MMSYSTEM.DLL
    2007-03-23 21:00:10 69632 --a------ F:\WINDOWS\NOTEPAD.EXE
    2007-03-23 21:00:07 74240 --a------ F:\WINDOWS\system32\storprop.dll
    2007-03-23 20:59:58 0 d--h----- F:\Documents and Settings\Default User.WINDOWS\Verkkoympäristö<VERKKO~1>
    2007-03-23 20:59:58 0 d-------- F:\Documents and Settings\Default User.WINDOWS\Työpöytä<TYPYT~1>
    2007-03-23 20:59:58 0 d--h----- F:\Documents and Settings\Default User.WINDOWS\Tulostinympäristö<TULOST~1>
    2007-03-23 20:59:58 0 d-------- F:\Documents and Settings\Default User.WINDOWS\Suosikit
    2007-03-23 20:59:58 0 d--h----- F:\Documents and Settings\Default User.WINDOWS\Mallit
    2007-03-23 20:59:58 0 dr------- F:\Documents and Settings\Default User.WINDOWS\Käynnistä-valikko<KYNNIS~1>
    2007-03-23 20:59:58 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Työpöytä<TYPYT~1>
    2007-03-23 20:59:58 0 dr------- F:\Documents and Settings\All Users.WINDOWS\Tiedostot<TIEDOS~1>
    2007-03-23 20:59:58 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Suosikit
    2007-03-23 20:59:58 0 d--h----- F:\Documents and Settings\All Users.WINDOWS\Mallit
    2007-03-23 20:59:58 0 dr------- F:\Documents and Settings\All Users.WINDOWS\Käynnistä-valikko<KYNNIS~1>
    2007-03-23 20:19:58 0 d-------- F:\Documents and Settings\-.-.000\Application Data\DivX
    2007-03-23 20:16:14 0 d-------- F:\Documents and Settings\-.-.000\Application Data\Ahead
    2007-03-23 20:14:52 0 d-------- F:\Program Files\Nero
    2007-03-23 20:14:52 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Application Data\Nero
    2007-03-23 20:05:15 118520 -----n--- F:\WINDOWS\system32\pxinsi64.exe
    2007-03-23 20:05:15 116472 -----n--- F:\WINDOWS\system32\pxcpyi64.exe
    2007-03-23 20:05:15 129784 -----n--- F:\WINDOWS\system32\pxafs.dll
    2007-03-23 20:05:15 36624 -----n--- F:\WINDOWS\system32\drivers\PxHelp20.sys
    2007-03-23 20:05:15 2560 -----n--- F:\WINDOWS\system32\drivers\cdralw2k.sys
    2007-03-23 20:05:15 2432 -----n--- F:\WINDOWS\system32\drivers\cdr4_xp.sys
    2007-03-23 20:05:10 0 d-------- F:\Program Files\DivX
    2007-03-23 20:04:42 0 --a------ F:\WINDOWS\nsreg.dat
    2007-03-23 20:03:53 0 d---s---- F:\Documents and Settings\-.-.000\UserData
    2007-03-23 20:01:00 223128 --a------ F:\WINDOWS\system32\drivers\dtscsi.sys
    2007-03-23 20:01:00 0 d-------- F:\Program Files\DAEMON Tools<DAEMON~1>
    2007-03-23 19:59:18 96256 --a------ F:\WINDOWS\system32\drivers\sptd8733.sys
    2007-03-23 19:59:18 664064 --a------ F:\WINDOWS\system32\drivers\sptd.sys
    2007-03-23 19:54:11 0 d-------- F:\Documents and Settings\-.-.000\Application Data\uTorrent
    2007-03-23 19:53:44 0 d-------- F:\Documents and Settings\All Users.WINDOWS\Application Data\nView_Profiles<NVIEW_~1>
    2007-03-23 19:43:08 0 d-------- F:\Program Files\EA GAMES<EAGAME~1>
    2007-03-23 19:35:58 38912 --a------ F:\WINDOWS\system32\drivers\AmdK8.sys
    2007-03-23 19:35:58 0 d-------- F:\Program Files\AMD
    2007-03-23 19:34:13 60928 -ra------ F:\WINDOWS\system32\drivers\viamraid.sys
    2007-03-23 19:33:29 0 d-------- F:\Program Files\VIA
    2007-03-23 19:33:00 6400 --a------ F:\WINDOWS\system32\drivers\splitter.sys
    2007-03-23 19:32:58 82944 --a------ F:\WINDOWS\system32\drivers\wdmaud.sys
    2007-03-23 19:32:57 52864 --a------ F:\WINDOWS\system32\drivers\DMusic.sys
    2007-03-23 19:32:55 54272 --a------ F:\WINDOWS\system32\drivers\swmidi.sys
    2007-03-23 19:32:54 142464 --a------ F:\WINDOWS\system32\drivers\aec.sys
    2007-03-23 19:32:52 172416 --a------ F:\WINDOWS\system32\drivers\kmixer.sys
    2007-03-23 19:32:51 2944 --a------ F:\WINDOWS\system32\drivers\drmkaud.sys
    2007-03-23 19:32:50 60800 --a------ F:\WINDOWS\system32\drivers\sysaudio.sys
    2007-03-23 19:32:48 7552 --a------ F:\WINDOWS\system32\drivers\MSKSSRV.sys
    2007-03-23 19:32:47 4992 --a------ F:\WINDOWS\system32\drivers\MSPQM.sys
    2007-03-23 19:32:44 5376 --a------ F:\WINDOWS\system32\drivers\MSPCLOCK.sys
    2007-03-23 19:32:35 4096 --a------ F:\WINDOWS\system32\ksuser.dll
    2007-03-23 19:32:35 145792 --a------ F:\WINDOWS\system32\drivers\portcls.sys
    2007-03-23 19:32:35 60288 --a------ F:\WINDOWS\system32\drivers\drmk.sys
    2007-03-23 19:29:35 27904 --a------ F:\WINDOWS\system32\drivers\VIAAGP1.SYS
    2007-03-23 19:28:07 306688 --a------ F:\WINDOWS\IsUninst.exe
    2007-03-23 19:27:59 0 d-------- F:\Documents and Settings\-.-.000\WINDOWS
    2007-03-23 19:25:24 5824 --a------ F:\WINDOWS\system32\drivers\ASUSHWIO.SYS
    2007-03-23 19:21:02 208896 --a------ F:\WINDOWS\system32\nvudisp.exe
    2007-03-23 19:20:47 208896 --a------ F:\WINDOWS\system32\NVUNINST.EXE
    2007-03-23 19:20:31 0 d-------- F:\NVIDIA
    2007-03-23 19:19:29 0 dr------- F:\Documents and Settings\-.-.000\Omat tiedostot<OMATTI~1>
    2007-03-23 19:19:14 0 d--h----- F:\Documents and Settings\-.-.000\Mallit
    2007-03-23 19:19:14 0 dr------- F:\Documents and Settings\-.-.000\Käynnistä-valikko<KYNNIS~1>
    2007-03-23 19:19:13 0 d--h----- F:\Documents and Settings\-.-.000\Verkkoympäristö<VERKKO~1>
    2007-03-23 19:19:13 0 d-------- F:\Documents and Settings\-.-.000\Työpöytä<TYPYT~1>
    2007-03-23 19:19:13 0 d--h----- F:\Documents and Settings\-.-.000\Tulostinympäristö<TULOST~1>
    2007-03-23 19:19:13 0 dr------- F:\Documents and Settings\-.-.000\Suosikit
    2007-03-23 19:19:13 2359296 --ah----- F:\Documents and Settings\-.-.000\NTUSER.DAT
    2007-03-23 19:18:05 229376 --ah----- F:\Documents and Settings\LocalService.NT-HALLINTA.001\NTUSER.DAT
    2007-03-23 19:17:47 229376 --ah----- F:\Documents and Settings\NetworkService.NT-HALLINTA.001\NTUSER.DAT
    2007-03-23 19:13:59 229376 ---h----- F:\Documents and Settings\Default User.WINDOWS\NTUSER.DAT
    2007-03-23 19:10:48 112128 --a------ F:\WINDOWS\system32\mapi32.dll
    2007-03-23 19:09:54 0 d--hs---- F:\Documents and Settings\All Users.WINDOWS\DRM
    2007-03-23 19:08:56 11264 --a------ F:\WINDOWS\system32\atrace.dll
    2007-03-23 19:08:49 12288 --a------ F:\WINDOWS\system32\nmevtmsg.dll
    2007-03-23 19:08:49 64512 --a------ F:\WINDOWS\system32\acctres.dll
    2007-03-23 19:08:48 16384 --a------ F:\WINDOWS\system32\icfgnt5.dll
    2007-03-23 19:08:43 173536 --a------ F:\WINDOWS\system32\wuweb.dll
    2007-03-23 19:08:43 41240 --a------ F:\WINDOWS\system32\wups.dll
    2007-03-23 19:08:43 127256 --a------ F:\WINDOWS\system32\wucltui.dll
    2007-03-23 19:08:43 6656 --a------ F:\WINDOWS\system32\wuauserv.dll
    2007-03-23 19:08:43 194840 --a------ F:\WINDOWS\system32\wuaueng1.dll
    2007-03-23 19:08:43 1343768 --a------ F:\WINDOWS\system32\wuaueng.dll
    2007-03-23 19:08:43 173848 --a------ F:\WINDOWS\system32\wuauclt1.exe
    2007-03-23 19:08:43 124696 --a------ F:\WINDOWS\system32\wuauclt.exe
    2007-03-23 19:08:43 465176 --a------ F:\WINDOWS\system32\wuapi.dll
    2007-03-23 19:08:43 7168 --a------ F:\WINDOWS\system32\bitsprx3.dll
    2007-03-23 19:08:43 8192 --a------ F:\WINDOWS\system32\bitsprx2.dll
    2007-03-23 19:08:42 18944 --a------ F:\WINDOWS\system32\qmgrprxy.dll
    2007-03-23 19:08:42 382464 --a------ F:\WINDOWS\system32\qmgr.dll
    2007-03-23 19:08:40 45568 --a------ F:\WINDOWS\system32\safrslv.dll
    2007-03-23 19:08:39 29696 --a------ F:\WINDOWS\system32\safrdm.dll
    2007-03-23 19:08:39 43520 --a------ F:\WINDOWS\system32\safrcdlg.dll
    2007-03-23 19:08:39 43520 --a------ F:\WINDOWS\system32\racpldlg.dll
    2007-03-23 19:08:37 240640 --a------ F:\WINDOWS\system32\srrstr.dll
    2007-03-23 19:08:37 23040 --a------ F:\WINDOWS\system32\fltmc.exe
    2007-03-23 19:08:37 16896 --a------ F:\WINDOWS\system32\fltlib.dll
    2007-03-23 19:08:37 128896 --a------ F:\WINDOWS\system32\drivers\fltmgr.sys
    2007-03-23 19:08:36 170496 --a------ F:\WINDOWS\system32\srsvc.dll
    2007-03-23 19:08:36 67584 --a------ F:\WINDOWS\system32\srclient.dll
    2007-03-23 19:08:36 28672 --a------ F:\WINDOWS\system32\nmmkcert.dll
    2007-03-23 19:08:36 32768 --a------ F:\WINDOWS\system32\mnmsrvc.exe
    2007-03-23 19:08:36 34560 --a------ F:\WINDOWS\system32\mnmdd.dll
    2007-03-23 19:08:36 32768 --a------ F:\WINDOWS\system32\isrdbg32.dll
    2007-03-23 19:08:36 81920 --a------ F:\WINDOWS\system32\ils.dll
    2007-03-23 19:08:36 73472 --a------ F:\WINDOWS\system32\drivers\sr.sys
    2007-03-23 19:08:35 105984 --a------ F:\WINDOWS\system32\msoert2.dll
    2007-03-23 19:08:35 252928 --a------ F:\WINDOWS\system32\msoeacct.dll
    2007-03-23 19:08:35 69632 --a------ F:\WINDOWS\system32\msconf.dll
    2007-03-23 19:08:35 48640 --a------ F:\WINDOWS\system32\inetres.dll
    2007-03-23 19:08:35 679424 --a------ F:\WINDOWS\system32\inetcomm.dll
    2007-03-23 19:08:34 190976 --a------ F:\WINDOWS\system32\schedsvc.dll
    2007-03-23 19:08:34 12288 --a------ F:\WINDOWS\system32\mstinit.exe
    2007-03-23 19:08:34 276480 --a------ F:\WINDOWS\system32\mstask.dll
    2007-03-23 19:08:34 65536 --a------ F:\WINDOWS\system32\icwphbk.dll
    2007-03-23 19:08:33 86016 --a------ F:\WINDOWS\system32\isign32.dll
    2007-03-23 19:08:33 278528 --a------ F:\WINDOWS\system32\inetcfg.dll
    2007-03-23 19:08:33 73728 --a------ F:\WINDOWS\system32\icwdial.dll
    2007-03-23 19:08:05 21672 --a------ F:\WINDOWS\system32\emptyregdb.dat<EMPTYR~1.DAT>
    2007-03-23 19:07:30 5632 --a------ F:\WINDOWS\system32\write.exe
    2007-03-23 19:07:26 138752 --a------ F:\WINDOWS\system32\sndvol32.exe
    2007-03-23 19:07:26 44544 --a------ F:\WINDOWS\system32\hticons.dll
    2007-03-23 19:07:26 73216 --a------ F:\WINDOWS\system32\avwav.dll
    2007-03-23 19:07:26 227840 --a------ F:\WINDOWS\system32\avtapi.dll
    2007-03-23 19:07:26 16384 --a------ F:\WINDOWS\system32\avmeter.dll
    2007-03-23 19:07:25 35328 --a------ F:\WINDOWS\system32\winchat.exe
    2007-03-23 19:07:20 119808 --a------ F:\WINDOWS\system32\winmine.exe
    2007-03-23 19:07:20 56832 --a------ F:\WINDOWS\system32\sol.exe
    2007-03-23 19:07:20 605696 --a------ F:\WINDOWS\system32\getuname.dll
    2007-03-23 19:07:20 80896 --a------ F:\WINDOWS\system32\charmap.exe
    2007-03-23 19:07:20 114688 --a------ F:\WINDOWS\system32\calc.exe
    2007-03-23 19:07:19 1161 --a------ F:\WINDOWS\system32\usrlogon.cmd
    2007-03-23 19:07:19 17408 --a------ F:\WINDOWS\system32\tsshutdn.exe
    2007-03-23 19:07:19 16384 --a------ F:\WINDOWS\system32\tskill.exe
    2007-03-23 19:07:19 14848 --a------ F:\WINDOWS\system32\tsdiscon.exe
    2007-03-23 19:07:19 15360 --a------ F:\WINDOWS\system32\tscon.exe
    2007-03-23 19:07:19 14848 --a------ F:\WINDOWS\system32\shadow.exe
    2007-03-23 19:07:19 15872 --a------ F:\WINDOWS\system32\rwinsta.exe
    2007-03-23 19:07:19 9728 --a------ F:\WINDOWS\system32\reset.exe
    2007-03-23 19:07:19 33792 --a------ F:\WINDOWS\system32\regini.exe
    2007-03-23 19:07:19 4096 --a------ F:\WINDOWS\system32\rdpcfgex.dll
    2007-03-23 19:07:19 22016 --a------ F:\WINDOWS\system32\qwinsta.exe
    2007-03-23 19:07:19 16896 --a------ F:\WINDOWS\system32\qappsrv.exe
    2007-03-23 19:07:19 126976 --a------ F:\WINDOWS\system32\mshearts.exe
    2007-03-23 19:07:19 55296 --a------ F:\WINDOWS\system32\freecell.exe
    2007-03-23 19:07:18 25088 --a------ F:\WINDOWS\system32\mtxlegih.dll
    2007-03-23 19:07:18 4096 --a------ F:\WINDOWS\system32\mtxex.dll
    2007-03-23 19:07:18 20480 --a------ F:\WINDOWS\system32\mtxdm.dll
    2007-03-23 19:07:18 21504 --a------ F:\WINDOWS\system32\msg.exe
    2007-03-23 19:07:18 15360 --a------ F:\WINDOWS\system32\logoff.exe
    2007-03-23 19:07:18 5120 --a------ F:\WINDOWS\system32\dcomcnfg.exe
    2007-03-23 19:07:18 15872 --a------ F:\WINDOWS\system32\cdmodem.dll
    2007-03-23 19:07:17 54272 --a------ F:\WINDOWS\system32\stclient.dll
    2007-03-23 19:07:17 147456 --a------ F:\WINDOWS\system32\comsnap.dll
    2007-03-23 19:07:17 97792 --a------ F:\WINDOWS\system32\comrepl.dll
    2007-03-23 19:07:17 25600 --a------ F:\WINDOWS\system32\comaddin.dll
    2007-03-23 19:07:13 131584 --a------ F:\WINDOWS\system32\sndrec32.exe
    2007-03-23 19:07:13 186368 --a------ F:\WINDOWS\system32\accwiz.exe
    2007-03-23 19:07:12 538624 --a------ F:\WINDOWS\system32\spider.exe
    2007-03-23 19:07:12 344064 --a------ F:\WINDOWS\system32\mspaint.exe
    2007-03-23 19:07:12 123392 --a------ F:\WINDOWS\system32\mplay32.exe
    2007-03-23 19:07:12 348160 --a------ F:\WINDOWS\system32\hypertrm.dll
    2007-03-23 19:07:12 21896 --a------ F:\WINDOWS\system32\drivers\tdtcp.sys
    2007-03-23 19:07:12 12040 --a------ F:\WINDOWS\system32\drivers\tdpipe.sys
    2007-03-23 19:07:12 139400 --a------ F:\WINDOWS\system32\drivers\rdpwd.sys
    2007-03-23 19:07:12 102400 --a------ F:\WINDOWS\system32\clipbrd.exe
    2007-03-23 19:07:11 44544 --a------ F:\WINDOWS\system32\tscupgrd.exe
    2007-03-23 19:07:11 93696 --a------ F:\WINDOWS\system32\tscfgwmi.dll
    2007-03-23 19:07:11 295424 --a------ F:\WINDOWS\system32\termsrv.dll
    2007-03-23 19:07:11 140800 --a------ F:\WINDOWS\system32\sessmgr.exe
    2007-03-23 19:07:11 60416 --a------ F:\WINDOWS\system32\remotepg.dll
    2007-03-23 19:07:11 67072 --a------ F:\WINDOWS\system32\rdshost.exe
    2007-03-23 19:07:11 13824 --a------ F:\WINDOWS\system32\rdsaddin.exe
    2007-03-23 19:07:11 87176 --a------ F:\WINDOWS\system32\rdpwsx.dll
    2007-03-23 19:07:11 19968 --a------ F:\WINDOWS\system32\rdpsnd.dll
    2007-03-23 19:07:11 62464 --a------ F:\WINDOWS\system32\rdpclip.exe
    2007-03-23 19:07:11 147968 --a------ F:\WINDOWS\system32\rdchost.dll
    2007-03-23 19:07:11 655360 --a------ F:\WINDOWS\system32\mstscax.dll
    2007-03-23 19:07:11 404992 --a------ F:\WINDOWS\system32\mstsc.exe
    2007-03-23 19:07:10 11776 --a------ F:\WINDOWS\system32\xolehlp.dll
    2007-03-23 19:07:10 20480 --a------ F:\WINDOWS\system32\qprocess.exe
    2007-03-23 19:07:10 91136 --a------ F:\WINDOWS\system32\mtxoci.dll
    2007-03-23 19:07:10 161280 --a------ F:\WINDOWS\system32\msdtcuiu.dll
    2007-03-23 19:07:10 956416 --a------ F:\WINDOWS\system32\msdtctm.dll
    2007-03-23 19:07:10 426496 --a------ F:\WINDOWS\system32\msdtcprx.dll
    2007-03-23 19:07:10 58880 --a------ F:\WINDOWS\system32\msdtclog.dll
    2007-03-23 19:07:10 11264 --a------ F:\WINDOWS\system32\icaapi.dll
    2007-03-23 19:07:10 39424 --a------ F:\WINDOWS\system32\cfgbkend.dll
    2007-03-23 19:07:09 6144 --a------ F:\WINDOWS\system32\msdtc.exe
    2007-03-23 19:07:09 60416 --a------ F:\WINDOWS\system32\colbact.dll
    2007-03-23 19:07:09 110080 --a------ F:\WINDOWS\system32\clbcatex.dll
    2007-03-23 19:07:09 625152 --a------ F:\WINDOWS\system32\catsrvut.dll
    2007-03-23 19:07:09 85504 --a------ F:\WINDOWS\system32\catsrvps.dll
    2007-03-23 19:07:09 225792 --a------ F:\WINDOWS\system32\catsrv.dll
    2007-03-23 19:07:08 540160 --a------ F:\WINDOWS\system32\comuid.dll
    2007-03-23 19:07:08 1267200 --a------ F:\WINDOWS\system32\comsvcs.dll
    2007-03-23 19:07:08 498688 --a------ F:\WINDOWS\system32\clbcatq.dll
    2007-03-23 19:07:03 56320 --a------ F:\WINDOWS\system32\servdeps.dll
    2007-03-23 19:07:03 17408 --a------ F:\WINDOWS\system32\mmfutil.dll
    2007-03-23 19:07:03 58880 --a------ F:\WINDOWS\system32\licwmi.dll
    2007-03-23 19:07:03 185344 --a------ F:\WINDOWS\system32\cmprops.dll
    2007-03-23 19:06:59 196864 --a------ F:\WINDOWS\system32\drivers\rdpdr.sys
    2007-03-23 19:06:58 40840 --a------ F:\WINDOWS\system32\drivers\termdd.sys
    2007-03-21 22:31:48 0 d-------- F:\WINDOWS\nview
    2007-03-20 23:27:34 0 d-------- F:\Program Files\Common Files\Raxco
    2007-03-20 15:11:20 0 d-------- F:\WINDOWS\system32\oodag
    2007-03-12 15:59:46 0 d-------- F:\Program Files\Common Files\Wise Installation Wizard<WISEIN~1>
    2007-03-11 19:58:30 0 d-------- F:\Program Files\Common Files\Adobe
    2007-03-09 21:05:05 0 dr------- F:\Documents and Settings\NetworkService.NT-HALLINTA.000\Suosikit
    2007-03-09 20:36:38 712704 --a------ F:\Documents and Settings\LocalService.NT-HALLINTA.000\NTUSER.DAT
    2007-03-09 20:36:24 712704 --a------ F:\Documents and Settings\NetworkService.NT-HALLINTA.000\NTUSER.DAT
    2007-03-02 15:17:00 227856 --a------ F:\WINDOWS\system32\PDBoot.exe
    2007-03-02 11:26:18 67352 --a------ F:\WINDOWS\system32\drivers\DefragFs.sys
    2007-02-28 13:53:46 0 d-------- F:\Documents and Settings\LocalService.NT-HALLINTA\Application Data\Ahead


    -- Find3M Report ---------------------------------------------------------------

    2007-03-27 13:50:30 375602 --a------ F:\WINDOWS\system32\perfh00B.dat
    2007-03-27 13:50:30 75610 --a------ F:\WINDOWS\system32\perfc00B.dat
    2007-03-26 17:32:22 0 d---s---- F:\Documents and Settings\-.-.000\Application Data\Microsoft<MICROS~1>
    2007-03-24 16:39:07 0 d-------- F:\Program Files\Common Files\Logitech
    2007-03-23 23:21:02 0 d-------- F:\Documents and Settings\-.-.000\Application Data\Macromedia<MACROM~1>
    2007-03-23 23:16:32 0 d-------- F:\Program Files\MSN Messenger<MSNMES~1>
    2007-03-23 21:30:12 0 d-------- F:\Program Files\Winamp
    2007-03-23 20:59:58 62 --ahs---- F:\Documents and Settings\-.-.000\Application Data\desktop.ini
    2007-03-23 20:04:41 0 d-------- F:\Documents and Settings\-.-.000\Application Data\Mozilla
    2007-03-23 19:19:34 0 d-------- F:\Documents and Settings\-.-.000\Application Data\Identities<IDENTI~1>
    2007-03-23 19:07:32 0 d-------- F:\Program Files\Messenger<MESSEN~1>
    2007-03-18 15:46:49 0 d--h----- F:\Program Files\InstallShield Installation Information<INSTAL~1>
    2007-03-12 16:31:13 0 d-------- F:\Program Files\Common Files\Ahead
    2007-02-23 07:29:58 524288 --a------ F:\WINDOWS\system32\DivXsm.exe
    2007-02-23 07:29:56 3596288 --a------ F:\WINDOWS\system32\qt-dx331.dll
    2007-02-23 07:29:49 200704 --a------ F:\WINDOWS\system32\ssldivx.dll
    2007-02-23 07:29:49 1044480 --a------ F:\WINDOWS\system32\libdivx.dll
    2007-02-23 07:25:24 196608 --a------ F:\WINDOWS\system32\dtu100.dll
    2007-02-23 07:25:24 73728 --a------ F:\WINDOWS\system32\dpl100.dll
    2007-02-23 07:25:23 53248 --a------ F:\WINDOWS\system32\dpuGUI10.dll
    2007-02-23 07:25:22 57344 --a------ F:\WINDOWS\system32\dpv11.dll
    2007-02-23 07:25:22 344064 --a------ F:\WINDOWS\system32\dpus11.dll
    2007-02-23 07:25:22 593920 --a------ F:\WINDOWS\system32\dpuGUI11.dll
    2007-02-23 07:25:22 294912 --a------ F:\WINDOWS\system32\dpu11.dll
    2007-02-23 07:25:22 294912 --a------ F:\WINDOWS\system32\dpu10.dll
    2007-02-23 07:25:19 802816 --a------ F:\WINDOWS\system32\divx_xx11.dll<DIVX_X~3.DLL>
    2007-02-23 07:25:19 823296 --a------ F:\WINDOWS\system32\divx_xx0c.dll<DIVX_X~1.DLL>
    2007-02-23 07:25:19 823296 --a------ F:\WINDOWS\system32\divx_xx07.dll<DIVX_X~2.DLL>
    2007-02-23 07:25:19 639066 --a------ F:\WINDOWS\system32\DivX.dll
    2007-02-16 04:40:35 124472 --a------ F:\WINDOWS\system32\DivXCodecUpdateChecker.exe<DIVXCO~1.EXE>
    2007-02-03 02:29:08 0 d-------- F:\Program Files\HighMAT CD Writing Wizard<HIGHMA~1>


    -- Registry Dump ---------------------------------------------------------------


    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
    "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"F:\\Program Files\\Common Files\\Ahead\\Lib\\NMBgMonitor.exe\""

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
    "NvCplDaemon"="RUNDLL32.EXE F:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
    "nwiz"="nwiz.exe /install"
    "NvMediaCenter"="RunDLL32.exe NvMCTray.dll,NvTaskbarInit"
    "SmcService"="F:\\PROGRA~1\\Sygate\\SPF\\smc.exe -startgui"
    "SoundMan"="SOUNDMAN.EXE"
    "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE"
    "RegistryMechanic"=""
    "avast!"="F:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe"

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="NeroCheck"
    "hkey"="HKLM"
    "command"="F:\\Program Files\\Common Files\\Ahead\\Lib\\NeroCheck.exe"
    "inimapping"="0"

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RaidTool]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="raid_tool"
    "hkey"="HKLM"
    "command"="F:\\Program Files\\VIA\\RAID\\raid_tool.exe"
    "inimapping"="0"

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="winampa"
    "hkey"="HKLM"
    "command"="F:\\Program Files\\Winamp\\winampa.exe"
    "inimapping"="0"


    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
    "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

    [HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
    "CTFMON.EXE"="F:\\WINDOWS\\system32\\CTFMON.EXE"

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
    "DisableRegistryTools"=dword:00000000

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system\Shell]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
    "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\WdfLoadGroup

    [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
    HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
    LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
    NetworkService REG_MULTI_SZ DnsCache\0\0
    DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
    rpcss REG_MULTI_SZ RpcSs\0\0
    imgsvc REG_MULTI_SZ StiSvc\0\0
    termsvcs REG_MULTI_SZ TermService\0\0



    -- End of Deckard's System Scanner: finished at 2007-03-28 at 12:47:48 ---------



    Deckard's System Scanner v20070318.32
    Extra logfile - please post this as an attachment with your post.
    --------------------------------------------------------------------------------

    -- System Information ----------------------------------------------------------

    Microsoft Windows XP Professional (build 2600) SP 2.0
    Architecture: X86; Language: Other (040B) - see http://preview.tinyurl.com/mhhp6

    CPU 0: AMD Athlon(tm) 64 Processor 3200+
    Percentage of Memory in Use: 34%
    Physical Memory (total/avail): 1023.23 MiB / 668.4 MiB
    Pagefile Memory (total/avail): 2459.63 MiB / 2228.7 MiB
    Virtual Memory (total/avail): 2047.88 MiB / 1982.38 MiB

    A: is Removable (Unformatted)
    C: is Fixed (NTFS) - 37.11 GiB total, 4.9 GiB free.
    D: is Fixed (NTFS) - 72.54 GiB total, 1.33 GiB free.
    E: is Fixed (NTFS) - 465.76 GiB total, 21.8 GiB free.
    F: is Fixed (NTFS) - 97.65 GiB total, 49.15 GiB free.
    G: is Fixed (NTFS) - 98.11 GiB total, 2.97 GiB free.
    H: is CDROM (UDF)
    I: is CDROM (No Media)


    -- Security Center -------------------------------------------------------------

    AUOptions is disabled.
    Windows Internal Firewall is disabled.

    FirstRunDisabled is set.

    FW: Sygate Personal Firewall v4.6 (Sygate Technologies, Inc.) Disabled
    AV: avast! antivirus 4.7.942 [VPS 000728-1] v4.7.942 (ALWIL Software) Disabled


    -- Environment Variables -------------------------------------------------------

    ALLUSERSPROFILE=F:\Documents and Settings\All Users.WINDOWS
    APPDATA=F:\Documents and Settings\-.-.000\Application Data
    CLIENTNAME=Console
    CommonProgramFiles=F:\Program Files\Common Files
    COMPUTERNAME=-
    ComSpec=F:\WINDOWS\system32\cmd.exe
    FP_NO_HOST_CHECK=NO
    HOMEDRIVE=F:
    HOMEPATH=\Documents and Settings\-.-.000
    LOGONSERVER=\\-
    NUMBER_OF_PROCESSORS=1
    OS=Windows_NT
    Path=F:\WINDOWS\SYSTEM32;F:\WINDOWS;F:\WINDOWS\SYSTEM32\WBEM
    PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    PROCESSOR_ARCHITECTURE=x86
    PROCESSOR_IDENTIFIER=x86 Family 15 Model 47 Stepping 2, AuthenticAMD
    PROCESSOR_LEVEL=15
    PROCESSOR_REVISION=2f02
    ProgramFiles=F:\Program Files
    PROMPT=$P$G
    SESSIONNAME=Console
    SystemDrive=F:
    SystemRoot=F:\WINDOWS
    TEMP=F:\DOCUME~1\-~1.000\LOCALS~1\Temp
    TMP=F:\DOCUME~1\-~1.000\LOCALS~1\Temp
    USERDOMAIN=-
    USERNAME=-
    USERPROFILE=F:\Documents and Settings\-.-.000
    windir=F:\WINDOWS


    -- User Profiles ---------------------------------------------------------------

    -.-.000 (admin)


    -- Add/Remove Programs ---------------------------------------------------------

    --> F:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
    --> F:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
    --> F:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
    --> F:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
    --> F:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
    --> F:\WINDOWS\UNNeroVision.exe /UNINSTALL
    --> F:\WINDOWS\UNRecode.exe /UNINSTALL
    --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 F:\WINDOWS\INF\PCHealth.inf
    Ad-Aware SE Personal --> F:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE F:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
    Athlon 64 Processor Driver --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0xb
    avast! Antivirus --> rundll32 F:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
    AVG Anti-Spyware 7.5 --> F:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
    Battlefield 2: Deluxe Edition --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}\setup.exe" -l0x9 -removeonly
    CCleaner (remove only) --> "F:\Program Files\CCleaner\uninst.exe"
    CDDRV_Installer --> MsiExec.exe /I{8CC990CD-87C8-475C-AC32-8A7984E2FCFA}
    DivX Codec --> F:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
    DivX Content Uploader --> F:\Program Files\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
    DivX Converter --> F:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
    DivX Player --> F:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
    DivX Web Player --> F:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    KhalSetup --> MsiExec.exe /I{C89C8D86-4423-4A58-AA40-DD259ACE07C1}
    Logitech SetPoint --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}\setup.exe" -l0xb -removeonly
    Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 --> "F:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
    Microsoft Windows XP -käyttöjärjestelmän ohjatun CD-levylle tallentamisen HighMAT-laajennus --> MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}
    Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
    Mozilla Firefox (2.0.0.3) --> F:\PROGRA~1\Mozilla Firefox\uninstall\helper.exe
    MSN Messenger 7.5 --> MsiExec.exe /I{9A379B72-03EC-11DA-BFBD-00065BBDC0B5}
    Nero 7 Premium --> MsiExec.exe /I{3CF62641-AAF4-434F-882A-40F754451035}
    NVIDIA Drivers --> F:\WINDOWS\system32\nvudisp.exe UninstallGUI
    PerfectDisk --> MsiExec.exe /I{212F5777-1190-4DEF-8E4D-6B2F313B45E7}
    Päivitys Windows XP:lle (KB894391) --> "F:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB898461) --> "F:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB908531) --> "F:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB910437) --> "F:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB916595) --> "F:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB920872) --> "F:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB922582) --> "F:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
    Realtek AC'97 Audio --> RunDll32 F:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "F:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" -l0xb -removeonly
    Registry Mechanic 6.0 --> "F:\Program Files\Registry Mechanic\unins000.exe"
    Spybot - Search & Destroy 1.4 --> "F:\Program Files\Spybot - Search & Destroy\unins000.exe"
    SpywareBlaster v3.5.1 --> "F:\Program Files\SpywareBlaster\unins000.exe"
    Steam --> F:\PROGRA~1\Steam\UNWISE.EXE F:\PROGRA~1\Steam\INSTALL.LOG
    Suojauspäivitys ohjelmistolle Windows XP (KB923689) --> "F:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB896358) --> "F:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB896428) --> "F:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB900725) --> "F:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB901214) --> "F:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB902400) --> "F:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB904706) --> "F:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB905414) --> "F:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB905749) --> "F:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB908519) --> "F:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB912919) --> "F:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB913580) --> "F:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB914388) --> "F:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB914389) --> "F:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB917344) --> "F:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB917422) --> "F:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB917953) --> "F:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB918118) --> "F:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB918439) --> "F:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB919007) --> "F:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB920213) --> "F:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB920670) --> "F:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB920683) --> "F:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB923191) --> "F:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB923694) --> "F:\WINDOWS\$NtUninstallKB923694$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB923789) --> F:\WINDOWS\system32\MacroMed\Flash\genuinst.exe F:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
    Suojauspäivitys Windows XP:lle (KB926255) --> "F:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB926436) --> "F:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB928090) --> "F:\WINDOWS\$NtUninstallKB928090$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB928843) --> "F:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
    Sygate Personal Firewall --> MsiExec.exe /I{F34D9A5F-484A-4E31-A9D3-908CB265B289}
    VIA Platform Device Manager --> F:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
    Winamp (remove only) --> "F:\Program Files\Winamp\UninstWA.exe"
    WinRAR-pakkausohjelma --> F:\Program Files\WinRAR\uninstall.exe


    -- End of Deckard's System Scanner: finished at 2007-03-28 at 12:47:48 ---------

     
  4. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Hei

    Loki näyttää puhtaalta, mutta se mikä pisti silmään, on se että sinulla on ilmeisesti Nero Scout päällä. Sen avaamat prosessit tiedetään joskus hidastavan konetta.

    Voit tarvittaessa sulkea Nero Scoutin näin:

    Avaa Nero Scout (löytyy ainakin Nero 7 Premium versiossa Toolseista), ja poista ruksi kohdasta 'Enable Nero Scout'.
     
  5. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    Ei tuo Nero Scout pitäis olla päällä.En löydä mitään kohtaan missä se ois.Mulla on suomeksi tämä nero.
     
  6. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Etsi F:\Program files\Common Files\Ahead\Lib\NeroScoutOptions.exe ja aja se.
     
  7. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    Noniin,kiitoksia sinulle.Viekö tuo paljonki resursseja?
     
    Last edited: Mar 29, 2007
  8. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Eikös sinun pitäisi itse huomata ero? :) Vai eikö auttanut ollenkaan sulkeminen?
     
  9. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    En kyllä huomannut eroa pahemmin.Oisko muita kikkoja miten sais koneen nopeemmaksi?
     
  10. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Eipä juuri, sinulla ei näytä olevan paljon mitään kovin turhaakaan päällä. Tarkista vielä Tehtäväluettelosta (Ctrl+Alt+Del) ettei NMBgMonitor.exe, NMIndexStoreSvr.exe tai NMIndexingService.exe löydy enää käynnissä olevista prosesseista.

    Samalla voit seurata hieman että mikä prosessi vie eniten CPU -aikaa, jos sinusta tuntuu että joku softa hidastaa konetta (esim. kuinka paljon haukkaavat PDAgent.exe ja PDEngine.exe?

    Minkälainen kokoonpano sinulla on koneena?
     
  11. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    NMIndexingService.exe <-- Toi muuten löytyy Prosesseista.
    PDAgent.exe haukkaa 4972kt ja PDEngine.exe 7212kt.
    Kokoonpano AMD Antton 64 +3200,6600GT,1GB rammia,500+250+80-Kovot.
     
  12. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Sammutetaan se, kokeillaan nopeuttaako konetta (sen saa sitten takaisinkin jos siltä tuntuu), eli

    1. Käynnistä -> Suorita... -> kirjoita: services.msc ja paina OK
    2. Etsi NMIndexingService ja valitse hiiren oikealla Ominaisuudet
    3. Valitse Käynnistystavaksi Manuaalinen
    4. Paina Palvelun tila -kohdasta Seis -painiketta
    5. Lopuksi OK.

    Tee sama myös NBServicelle jos näkyy tuolla Palvelut -sovelluksessa olevan Käynnistetty / Automaattinen tilassa.

    Noista mitä muistin käytöstä kerroit, ei mielestäni voi paljoa tehdä johtopäätöksiä vaan paremminkin siitä kuinka paljon suoritin kuormittuu ko. ohjelman kohdalla.

    Edit: käsittämätön virhe ohjeessa, muutettu Automaattinen -> Manuaalinen
     
    Last edited: Apr 3, 2007
  13. 762rk62

    762rk62 Regular member

    Joined:
    Nov 24, 2005
    Messages:
    134
    Likes Received:
    0
    Trophy Points:
    26
    Nuo PDAgent ja PDEngine:n servicet voi myös turvallisin mielin käydä vaihtamassa manuaalisiksi. Ne käynnistyy kuitenkin automaattisesti kun käynnistät PerfectDiskin. Saa ainakin hiukan muistia jäämään enemmen muuhun käyttöön.

    1. Käynnistä -> Suorita... -> kirjoita: services.msc ja paina OK
    2. Etsi PDAgent Service ja valitse hiiren oikealla Ominaisuudet
    3. Paina Palvelun tila -kohdasta Seis -painiketta
    4. Valitse Käynnistystavaksi Manuaalinen
    5. Lopuksi OK.

    Tee sama myös PDEnginelle.

    Itsellä ei ainakaan vaikuttanut mitenkään PD:n toimintaan.
     
    Last edited: Mar 30, 2007
  14. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    Jees,meni toi wintoosa uusiksi,kumminki asensin neron ja tein ohjeiden mukaisesti.Kaveri kerto,että tuolla palveluissa on jotain turhanpäiväsiä palveluita mitä kannattais ottaa pois?Osaisitteko te sanoo,että mitä?
     
  15. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Tarkoitatko että jouduit asentamaan Windowsin uusiksi tässä välillä? Jos niin miksi?

    Jos olet asentanut uudestaan sitten edellisen Hjt -lokin, niin vaikea sanoa mitä palveluita sinulla on siellä päällä :)
     
  16. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    PerfectDisk <-- Tolla sähläsin omiani.

    Ja new logi on tässä:

    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 15:20:21, on 3.4.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    F:\WINDOWS\System32\smss.exe
    F:\WINDOWS\system32\winlogon.exe
    F:\WINDOWS\system32\services.exe
    F:\WINDOWS\system32\lsass.exe
    F:\WINDOWS\system32\svchost.exe
    F:\WINDOWS\System32\svchost.exe
    F:\WINDOWS\system32\spoolsv.exe
    F:\WINDOWS\Explorer.EXE
    F:\WINDOWS\system32\RunDLL32.exe
    F:\WINDOWS\SOUNDMAN.EXE
    F:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    F:\Program Files\Logitech\SetPoint\SetPoint.exe
    F:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
    F:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    F:\Program Files\Alwil Software\Avast4\ashServ.exe
    F:\WINDOWS\system32\nvsvc32.exe
    F:\WINDOWS\system32\oodag.exe
    F:\WINDOWS\system32\wscntfy.exe
    F:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    F:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    F:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    F:\Program Files\MSN Messenger\msnmsgr.exe
    F:\Program Files\Mozilla Firefox\firefox.exe
    F:\Program Files\uTorrent\utorrent.exe
    F:\Documents and Settings\Omistaja.-.001\Työpöytä\HiJackThis_v2.0.0.0.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE F:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [avast!] F:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] F:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
    O4 - HKCU\..\Run: [MsnMsgr] "F:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'Paikallinen palve')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'Verkkopalve')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] F:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Logitech SetPoint.lnk = F:\Program Files\Logitech\SetPoint\SetPoint.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - F:\Program Files\Messenger\msmsgs.exe
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - F:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - F:\WINDOWS\system32\browseui.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - F:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - F:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - F:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - F:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Loogisen levyn hallinnan valvontapalvelu (dmadmin) - Unknown owner - F:\WINDOWS\System32\dmadmin.exe
    O23 - Service: Tapahtumaloki (Eventlog) - Unknown owner - F:\WINDOWS\system32\services.exe
    O23 - Service: CD-levyjen kirjoittamisen IMAPI COM -palvelu (ImapiService) - Unknown owner - F:\WINDOWS\system32\imapi.exe
    O23 - Service: NetMeeting etätyöpöydän jakaminen (mnmsrvc) - Unknown owner - F:\WINDOWS\system32\mnmsrvc.exe
    O23 - Service: NBService - Nero AG - F:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - F:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - F:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: O&O Defrag - O&O Software GmbH - F:\WINDOWS\system32\oodag.exe
    O23 - Service: Plug and Play (PlugPlay) - Unknown owner - F:\WINDOWS\system32\services.exe
    O23 - Service: Etätyöpöydän ohjeen istunnonhallinta (RDSessMgr) - Unknown owner - F:\WINDOWS\system32\sessmgr.exe
    O23 - Service: Älykortti (SCardSvr) - Unknown owner - F:\WINDOWS\System32\SCardSvr.exe
    O23 - Service: Resurssilokit ja -hälytykset (SysmonLog) - Unknown owner - F:\WINDOWS\system32\smlogsvc.exe
    O23 - Service: Aseman tilannevedos (VSS) - Unknown owner - F:\WINDOWS\System32\vssvc.exe
    O23 - Service: WMI resurssisovitin (WmiApSrv) - Unknown owner - F:\WINDOWS\system32\wbem\wmiapsrv.exe

    --
    End of file - 4726 bytes
     
  17. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118
    Itse laittaisin seuraavat palvelut tällä tavalla:

    Aseman tilannevedos -> Ei käytössä
    CD-levyjen kirjoittamisen IMAPI COM -palvelu -> Manuaalinen
    Etätyöpöydän ohjeen istunnonhallinta -> Ei käytössä
    Loogisen levyn hallinnan valvonta palvelu -> Manuaalinen
    NBService -> Manuaalinen
    NetMeeting etätyöpöydän jakaminen -> Manuaalinen
    NMIndexingService -> Manuaalinen
    WMI resurssisovitin -> Manuaalinen

    Eli:

    1. Käynnistä -> Suorita... -> kirjoita: services.msc ja paina OK
    2. Sitten etsit em. palvelun ja valitse hiren oikealla Ominaisuudet
    3. Valitse Käynnistystavaksi ehdotettu tapa.
    4. Lopuksi OK.

    Ja semmoinen tiedoksi, että O&O defrag ainakin minulla, vei välillä ihan törkeästi koneen resursseja, kaikki muisti ja CPU kelpasi. Että jos kone vielä tahmaa, niin seuraa Tehtävienhallinnalla O&O:n prosesseja.
     
    Last edited: Apr 3, 2007
  18. Mestaus

    Mestaus Regular member

    Joined:
    Dec 21, 2005
    Messages:
    1,141
    Likes Received:
    0
    Trophy Points:
    46
    Noni noin on tehty.
    Otin ton O&O pois..Mikä ois hyvä eheytysofta?Persediskii en laita.
     
  19. yamaneko

    yamaneko Senior member

    Joined:
    Sep 22, 2005
    Messages:
    5,093
    Likes Received:
    1
    Trophy Points:
    118

Share This Page